vendor:
LCDProc
by:
Andrew Hobgood
7.5
CVSS
HIGH
Remote Buffer Overflow
119
CWE
Product Name: LCDProc
Affected Version From: 0.4
Affected Version To: 0.4-pre9
Patch Exists: YES
Related CWE: N/A
CPE: a:lcdproc:lcdproc:0.4-pre9
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Linux/x86
2001
LCDproc 0.4-pre9 Remote Buffer Overflow Vulnerability
A vulnerability exists in the server portion of version 0.4 of the LCDProc package. Several remote buffer overflows exist that could allow a remote attacker to corrupt memory and execute arbitrary code. It is possible to exploit this conditions to execute code with the privileges of the user LCDProc is running as.
Mitigation:
Upgrade to the latest version of LCDProc